Re: [Shorewall-users] ACL Support?

2012-11-26 Thread Aaron C. de Bruyn
Thanks Tom--that's exactly what I'm looking for. -A On Mon, Nov 26, 2012 at 11:05 AM, Tom Eastep wrote: > On 11/26/2012 10:23 AM, Aaron C. de Bruyn wrote: > > Is there an easier way to do ACLs in Shorewall? > > I am currently writing out lots of lines in the rules file that differ > > only by

Re: [Shorewall-users] ACL Support?

2012-11-26 Thread Tom Eastep
On 11/26/2012 10:23 AM, Aaron C. de Bruyn wrote: > Is there an easier way to do ACLs in Shorewall? > I am currently writing out lots of lines in the rules file that differ > only by an IP address. > > Instead of writing rules like: > SSH(ACCEPT)wan:some.ip.addr dmztcp 22 > SSH(ACCEPT)

[Shorewall-users] ACL Support?

2012-11-26 Thread Aaron C. de Bruyn
Is there an easier way to do ACLs in Shorewall? I am currently writing out lots of lines in the rules file that differ only by an IP address. Instead of writing rules like: SSH(ACCEPT)wan:some.ip.addr dmztcp 22 SSH(ACCEPT)wan:ano.ther.ip.addr dmztcp 22 SSH(ACCEPT)wa

Re: [Shorewall-users] broadcasts

2012-11-26 Thread Simon Hobson
Vieri Di Paola wrote: >My network is 10.215.0.0/255.255.0.0. >I set it up this way for convenience only. Actually, all my hosts >are within 10.215.144-147.xxx and 10.215.246-248.xxx (shorewall zone >'loc'). > >I have a router linking me to another location (shorewall zone net2) >where there are

[Shorewall-users] Mirror in Slovakia is back online

2012-11-26 Thread Tom Eastep
Thanks to Juraj Ontkanin, the mirror in Slovakia is back online. Web site: http://slovakia.shorewall.net Downloads: ftp://slovakia.shorewall.net/mirror/shorewall http://slovakia.shorewall.net/pub/shorewall Thanks Juraj, -Tom -- Tom Eastep\ When I die, I want to go like my

[Shorewall-users] broadcasts

2012-11-26 Thread Vieri Di Paola
Hi, My network is 10.215.0.0/255.255.0.0. I set it up this way for convenience only. Actually, all my hosts are within 10.215.144-147.xxx and 10.215.246-248.xxx (shorewall zone 'loc'). I have a router linking me to another location (shorewall zone net2) where there are other hosts within, say,